MangoBery “Site_Path” Parameter Handling Remote PHP File Inclusion … - FrSIRT

MangoBery “Site_Path” Parameter Handling Remote PHP File Inclusion … - FrSIRT
MangoBery “Site_Path” Parameter Handling Remote PHP File Inclusion …FrSIRT, France - Mar 29, 2007These issues are due to input validation errors in various scripts (eg “boxes/quotes.php” or “templates/mangobery/footer.sample.php”) when processing the …CodeBB “phpbb_root_path” Parameter Handling Remote PHP File … FrSIRTAy System Web Content System “path[JavascriptEdit]” PHP File … FrSIRTaBitWhizzy “d” Parameter Directory Listing and Cross Site … FrSIRTFrSIRTall 6 news articles

CodeGear Ships Delphi for PHP (LinuxElectrons)

CodeGear Ships Delphi for PHP (LinuxElectrons)
SCOTTS VALLEY , Calif. ? CodeGear has said that DelphiŪ for PHP ? an integrated visual Rapid Application Development (RAD) environment for the popular PHP Web development language ? is now shipping worldwide.

Spammers hack PHP websites to make money from online pharmacies

Spammers hack PHP websites to make money from online pharmacies
Spam campaigns advertising internet pharmacies peddling drugs are directing users to webpages hosted on hacked innocent websites that then automatically redirect surfers to the online store. The hacked websites are all using PHP a scripting language used by many internet sites which has suffered from serious security vulnerabilities in the past. Because the spam messages point to an innocent website rather than directly to the online pharmacy there is a risk that sites unaware of the spam campaign may have their reputations tarnished. Anti-spam products often use information about the webpage pointed to by an email as an indicator of whether the message is spam or not.